Opera < 11.61 Multiple Vulnerabilities

Medium Nessus Plugin ID 57751


The remote host contains a web browser that is potentially affected by multiple vulnerabilities.


The version of Opera installed on the remote Windows host is earlier than 11.61 and is, therefore, potentially affected by multiple vulnerabilities :

- Same-origin policy restriction can be bypassed via specially crafted web content and HTML frames manipulation. (Issue #1007)

- An error in local file access restrictions can allow malicious websites to determine the presence of local files. Note that the content of local files are not disclosed and an attacker would need to guess the path of a file in order to determine if the file is present.
(Issue #1008)


Upgrade to Opera 11.61 or later.

See Also




Plugin Details

Severity: Medium

ID: 57751

File Name: opera_1161.nasl

Version: $Revision: 1.5 $

Type: local

Agent: windows

Family: Windows

Published: 2012/01/31

Modified: 2016/05/12

Dependencies: 21746

Risk Information

Risk Factor: Medium


Base Score: 4.3

Temporal Score: 3.7

Vector: CVSS2#AV:N/AC:M/Au:N/C:N/I:P/A:N

Temporal Vector: CVSS2#E:ND/RL:OF/RC:C

Vulnerability Information

CPE: cpe:/a:opera:opera_browser

Required KB Items: SMB/Opera/Version

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 2012/01/24

Vulnerability Publication Date: 2012/01/24

Reference Information

BID: 51648

CWE: 20, 74, 79, 442, 629, 711, 712, 722, 725, 750, 751, 800, 801, 809, 811, 864, 900, 928, 931, 990